CISA Adds Langflow, Tomcat, and N-central Flaws to the KEV Catalog: What Website Owners Should Do
On August 5, 2026, CISA added three actively exploited flaws to its KEV catalog, including a critical Langflow RCE, an Apache Tomcat path handling bug, and an N-central remote code execution chain. Here is what hosting customers and developers should patch first.